Description
There is a heap based buffer over-read in LibSass 3.4.5, related to address 0xb4803ea1. A crafted input will lead to a remote denial of service attack.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1474019
http://www.securityfocus.com/bid/99930
Related Vulnerabilities
CVE-2023-29924 Vulnerability in maven package tech.powerjob:powerjob
CVE-2018-1051 Vulnerability in maven package org.jboss.resteasy:resteasy-yaml-provider
CVE-2021-31805 Vulnerability in maven package org.apache.struts:struts2-core
CVE-2021-23639 Vulnerability in npm package md-to-pdf
CVE-2023-51075 Vulnerability in maven package cn.hutool:hutool-core